Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 12-04-2020 Uruchomiony przez KF (administrator) KF-KOMPUTER (MSI MS-7978) (12-04-2020 14:44:14) Uruchomiony z C:\Users\KF\Downloads Załadowane profile: KF & DefaultAppPool (Dostępne profile: KF & DefaultAppPool) Platform: Windows 10 Home Wersja 1903 18362.720 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) () [Brak podpisu cyfrowego] C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSISvc32.exe () [Brak podpisu cyfrowego] C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSISvc64.exe (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Appwork GmbH -> AppWork GmbH) C:\Users\KF\AppData\Local\JDownloader 2.0\JDownloader2.exe (Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (A-Volute -> ) C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\Program Files (x86)\Battle.net\Battle.net.exe <4> (Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.7010\Agent.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) E:\Blizzard\World of Warcraft\_retail_\Utils\WowVoiceProxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) E:\Blizzard\World of Warcraft\_retail_\Wow.exe (Ghisler Software GmbH -> Ghisler Software GmbH) C:\totalcmd\TOTALCMD64.EXE (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <40> (GuinpinSoft inc) [Brak podpisu cyfrowego] C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.0.0_x64.exe (Hewlett Packard -> Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe (Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech Gaming Software\LAClient\laclient.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\KF\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2> (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.20022.11011.0_x64__8wekyb3d8bbwe\Video.UI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\inetsrv\w3wp.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SnippingTool.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <2> (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\Live Update.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe (Noriyuki Miyazaki -> Crystal Dew World) C:\Program Files (x86)\CrystalDiskInfo\DiskInfo32.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_e0a5a1b06de180e3\Display.NvContainer\NVDisplay.Container.exe <2> (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Piriform Software Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Rivet Networks LLC -> Rivet Networks) C:\Program Files\Killer Networking\Network Manager\KillerService.exe (Rivet Networks LLC -> Rivet Networks) C:\Program Files\Killer Networking\Network Manager\NetworkManager.exe (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.) C:\Users\KF\AppData\Local\Temp\Twitch\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.) C:\Users\KF\AppData\Roaming\Twitch\Bin\Electron\TwitchUI.exe <8> (Twitch Interactive, Inc. -> Twitch Interactive, Inc.) C:\Users\KF\AppData\Roaming\Twitch\Bin\TwitchAgent.exe (Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [NahimicMSIUILauncher] => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [532448 2015-08-28] (A-Volute -> ) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [17987704 2017-10-20] (Logitech Inc -> Logitech Inc.) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3022416 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242392 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9228800 2017-06-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [APSDaemon] => c:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Live Update] => C:\Program Files (x86)\MSI\Live Update\Live Update.exe [26310832 2020-02-06] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== UWAGA HKU\S-1-5-21-2017892951-354561005-2720775881-1000\...\Run: [Steam] => e:\Steam\steam.exe [3148576 2019-06-15] (Valve -> Valve Corporation) HKU\S-1-5-21-2017892951-354561005-2720775881-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-14] (Piriform Software Ltd -> Piriform Ltd) HKU\S-1-5-21-2017892951-354561005-2720775881-1000\...\Winlogon: [Shell] %comspec% <==== UWAGA HKU\S-1-5-21-2017892951-354561005-2720775881-1000\...\Command Processor: @mode 20,5 & tasklist /FI "IMAGENAME eq FirewallModule.exe" 2>NUL | find /I /N "FirewallModule.exe">NUL && exit & if exist ( start /MIN "" & tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) else ( tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) <==== UWAGA HKU\S-1-5-21-2017892951-354561005-2720775881-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Mystify.scr [152576 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.163\Installer\chrmstp.exe [2020-04-03] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2016-09-29] ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk [2020-02-21] ShortcutTarget: Killer Network Manager.lnk -> C:\Program Files\Killer Networking\Network Manager\NetworkManager.exe (Rivet Networks LLC -> Rivet Networks) Startup: C:\Users\KF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2019-11-21] ShortcutTarget: Twitch.lnk -> C:\Users\KF\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0A147BB9-176B-4BEC-901B-39927C39CCAC} - System32\Tasks\CorelUpdateHelperTaskCore => C:\Program Files (x86)\Corel\CUH\v2\CUH.exe [1677600 2019-09-06] (Corel Corporation -> Corel Corporation) Task: {0AB6A57A-5F15-4578-85E6-E90EDFF482FA} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {1204CB12-59DE-46A4-A5FF-822605C622B7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-07-28] (Google Inc -> Google Inc.) Task: {1D66785F-DE93-4F4A-8D18-1FFD433FAD92} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {1EB893AD-AF0B-446C-B5F5-0053E0B07E6D} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {24CE3EC8-56F0-423A-89C8-93BFB8BE59D5} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {2E5F912B-CC9C-4C32-80E6-ECF359039E8D} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {331CA0FB-208A-4516-A577-A7C6432D25CB} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {3581E50C-2EBC-45E7-9BA4-F2001FEBDC15} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {36715946-CEDB-437E-A910-6DED90C9ECCE} - \Microsoft\Windows\UNP\RunCampaignManager -> Brak pliku <==== UWAGA Task: {380CBE74-C2DD-4DE9-85CB-37EA6971F8D0} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {3D9F7317-C8C2-40D9-AA7C-CF8F99C1D1BD} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-03-11] (Adobe Inc. -> Adobe) Task: {409F5155-D77E-4C24-88A3-6016D61CF80F} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {45F51342-C408-4FA0-B140-60419B406538} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {46BA2D60-0634-4499-A2BB-9D6525B2F0D8} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653848 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB} Task: {4F2A893C-D271-428F-BD0E-87B96742C3FC} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {51F2D1E9-1445-4958-9CDF-8125D988930E} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {53242168-052E-40C4-9BFF-3EAFD70CED6A} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {57871527-015E-4850-A59A-ABC7E873A438} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-07-28] (Google Inc -> Google Inc.) Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {5C7755BE-667A-4F9A-9678-6517D165763A} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_344_pepper.exe [1453624 2020-03-11] (Adobe Inc. -> Adobe) Task: {5E95223E-1B66-40CB-B2F4-6939C03F7EB8} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-14] (Piriform Software Ltd -> Piriform Software Ltd) Task: {6276EE84-48A8-434C-BB6D-4E13926BC3F5} - System32\Tasks\CrystalDiskInfo => C:\Program Files (x86)\CrystalDiskInfo\DiskInfo32.exe [2891936 2018-06-13] (Noriyuki Miyazaki -> Crystal Dew World) Task: {6345AFA4-61FC-4D1B-8CA6-169BE1A6D815} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {69646AD2-90B7-4484-998F-0C0CE8569EB8} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2762968 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) Task: {6B235166-C5AF-45B2-BC70-8F8AEDA90795} - System32\Tasks\{5820AFCB-E525-4B9F-AB73-3C03B0BB0F22} => C:\WINDOWS\system32\pcalua.exe -a M:\data\ins_full_02\Install.exe -d M:\data\ins_full_02 Task: {72ECC1D4-45B2-4876-85D6-3C758EFD61D3} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {735EF0F5-5368-48BD-A3D0-12F964CD5A98} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {7367036F-BDC1-46BA-A4EE-607FF940A4B1} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1724928 2019-12-17] () [Brak podpisu cyfrowego] Task: {744BFD1D-C632-44AD-A282-7B6B5292DEBC} - System32\Tasks\NahimicMSIsvc64Run => C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIsvc64.exe [276992 2015-08-28] () [Brak podpisu cyfrowego] Task: {831F39DF-0529-49F8-B0A7-188461D49918} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {838867F4-D319-4F8C-9FF0-257473B066C8} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {85321AC0-5744-4823-A1D3-C7F31A92FCD7} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {87AD6BA5-2D0C-4EB8-8372-C6EA5679D072} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {93C80719-F8F2-4BB8-BD9C-B0D96FFBFC6D} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {967C22F6-C445-461F-B635-5BD5E6F3ED67} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {9E41FA52-3B28-4495-B232-6479FE424514} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {9FA18E35-96C3-4273-AF1C-94FFA421CC6D} - System32\Tasks\NahimicMSIsvc32Run => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIsvc32.exe [816128 2015-08-28] () [Brak podpisu cyfrowego] Task: {A3BCB927-27FA-4236-A777-E97DE6AF4286} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {A458CDF6-B700-47C2-8BD1-19AD51A587F3} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {A9B0E98E-C93D-4828-980B-BD19C39ADA63} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-14] (Piriform Software Ltd -> Piriform Ltd) Task: {B05CD264-8319-4E6F-A7DB-77F8CC0D57DB} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {B4F46DCB-AEEB-4B2E-982E-EB93F04B513E} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302880 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B7DE43B7-3BD9-45F2-B2BB-49632035DA23} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {BD31CBAA-ECA3-4A86-9FA9-9E30EFB55328} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3022416 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {C591AFD9-92E8-4CE5-BD87-9C8CCC56197F} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {C88893C8-D37E-4701-B210-BAD5C7AB1E5A} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C9C1BA6E-603F-4DB4-A2A0-107AB8B2C9CE} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\avast software\overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software) Task: {CC370053-4AA9-48A2-B1BD-EB161493A013} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {CFB7B01E-CC7F-4D49-B218-66190970B075} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems) Task: {D5954D84-994A-46A7-8C4F-087A20ABE1EC} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {DAB76AFB-E076-4013-92EB-CD3966FE9967} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E1826656-63D9-425E-8D3C-44BBEF1C055C} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {E314B45B-5931-46EE-B4B5-85D86C58A83E} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {E3346324-BBC0-4C8C-A8CD-F45E483CDD80} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [909112 2016-07-26] (Intel(R) Trusted Connect Service -> Intel(R) Corporation) Task: {E8CB2D62-A41E-427E-98B2-93AB1A811824} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {EA4CDF47-F1D1-4E60-9993-832B9302E9A9} - System32\Tasks\NahimicMSIUILauncherRun => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [532448 2015-08-28] (A-Volute -> ) Task: {F717C4F9-8001-4AD2-BE59-B0BD77A27293} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 85.11.66.36 85.11.66.45 Tcpip\..\Interfaces\{3f2e57c5-fe4e-4f53-8ae6-85bf764845bd}: [DhcpNameServer] 85.11.66.36 85.11.66.45 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-05-20] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-05-20] (Oracle America, Inc. -> Oracle Corporation) Edge: ====== Edge Notifications: HKU\S-1-5-21-2017892951-354561005-2720775881-1000 -> hxxps://www.napiprojekt.pl FireFox: ======== FF Plugin: @videolan.org/vlc,version=3.0.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN -> VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-05-20] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-05-20] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-03-06] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin HKU\S-1-5-21-2017892951-354561005-2720775881-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\KF\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-04-05] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default [2020-04-12] CHR Notifications: Default -> hxxps://player.pl; hxxps://radar-opadow.pl; hxxps://vod.pl; hxxps://www.curse.com; hxxps://www.komputronik.pl; hxxps://www2.esky.pl CHR Session Restore: Default -> [funkcja włączona] CHR Extension: (Prezentacje) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13] CHR Extension: (Dokumenty) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13] CHR Extension: (Dysk Google) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-07-28] CHR Extension: (YouTube) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-07-28] CHR Extension: (Coin-Hive Blocker) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccagdbjcbhmcdcbbknfebhhdbolnfimo [2019-07-17] CHR Extension: (uBlock Origin) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2020-02-06] CHR Extension: (Tampermonkey) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2020-01-07] CHR Extension: (minerBlock) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\emikbbbebcdfohonlaifafnoanocnebl [2019-02-04] CHR Extension: (Avast SafePrice | Porównania, promocje, kupony) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-03-19] CHR Extension: (MyJDownloader Browser Extension) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip [2019-12-07] CHR Extension: (Arkusze) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13] CHR Extension: (Night Mode Pro) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbilbeoogenjmnabenfjfoockmpfnjoh [2019-08-06] CHR Extension: (Dokumenty Google offline) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-13] CHR Extension: (AdBlock — best ad blocker) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-04-05] CHR Extension: (Avast Online Security) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2020-02-29] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04] CHR Extension: (Better History) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\obciceimmggglbmelaidpjlmodcebijb [2017-08-28] CHR Extension: (Simple EPUB Reader) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\ojhbgcchcbdjdenibfmjofobklkkhofc [2020-04-01] CHR Extension: (Gmail) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-30] CHR Extension: (Chrome Media Router) - C:\Users\KF\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-03] CHR Profile: C:\Users\KF\AppData\Local\Google\Chrome\User Data\System Profile [2020-04-03] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3374160 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3103824 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [8188768 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [324000 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R2 CdRomArbiterService; C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.0.0_x64.exe [8704 2019-12-10] (GuinpinSoft inc) [Brak podpisu cyfrowego] S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2016-08-11] (FUTUREMARK INC -> Futuremark) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [987432 2016-07-26] (Intel(R) Trusted Connect Service -> Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [177440 2016-08-30] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) R2 Killer Service V2; C:\Program Files\Killer Networking\Network Manager\KillerService.exe [457104 2016-12-05] (Rivet Networks LLC -> Rivet Networks) R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [225400 2017-10-20] (Logitech Inc -> Logitech Inc.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6933272 2020-03-12] (Malwarebytes Inc -> Malwarebytes) R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2325168 2020-02-03] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Brak podpisu cyfrowego] R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Brak podpisu cyfrowego] R2 PSI_SVC_2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc) R2 PSI_SVC_2_x64; C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [337776 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc) R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2017-01-16] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation) R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe [495720 2018-07-04] (Wondershare Technology Co.,Ltd -> Wondershare) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_e0a5a1b06de180e3\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_e0a5a1b06de180e3\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [201240 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [230344 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [201768 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [346592 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [59496 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [15360 2018-07-06] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software) R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [239840 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [46384 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42288 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [163416 2019-01-18] (AVAST Software s.r.o. -> AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [111800 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [87432 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1028672 2019-05-23] (AVAST Software s.r.o. -> AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [469272 2019-05-23] (AVAST Software s.r.o. -> AVAST Software) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [208472 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [380464 2018-12-18] (AVAST Software s.r.o. -> AVAST Software) R1 BfLwf; C:\WINDOWS\system32\DRIVERS\bwcW10x64.sys [145736 2016-09-19] (Rivet Networks LLC -> Rivet Networks, LLC.) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2017-01-16] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-05-17] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-05-17] (AVB Disc Soft, SIA -> Disc Soft Ltd) R1 HWiNFO; C:\WINDOWS\system32\drivers\HWiNFO64A.SYS [66128 2019-07-16] (Martin Malik - REALiX -> REALiX(tm)) R3 KillerEth; C:\WINDOWS\System32\drivers\e2xw10x64.sys [162120 2016-09-16] (Rivet Networks LLC -> Qualcomm Atheros, Inc.) R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech) R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2017-10-20] (Logitech Inc -> Logitech Inc.) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [214496 2020-04-12] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2020-03-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-04-12] (Malwarebytes Inc -> Malwarebytes) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_e0a5a1b06de180e3\nvlddmkm.sys [23439288 2020-03-19] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2020-04-02] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2013-09-30] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2013-09-30] (MiniTool Solution Ltd -> ) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [24000 2019-09-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> ) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2017-01-16] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R3 UcmCxUcsiNvppc; C:\WINDOWS\System32\drivers\UcmCxUcsiNvppc.sys [715680 2020-03-18] (NVIDIA Corporation -> NVIDIA Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation) S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X] U3 idsvc; Brak ImagePath S3 WinRing0_1_2_0; \??\C:\Users\KF\AppData\Local\Temp\tmp125A.tmp [X] <==== UWAGA ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-04-12 14:44 - 2020-04-12 14:44 - 000038437 _____ C:\Users\KF\Downloads\FRST.txt 2020-04-12 14:36 - 2020-04-12 14:36 - 000000002 _____ C:\Users\KF\Downloads\pavtopkris.txt 2020-04-12 14:31 - 2020-04-12 14:44 - 000000000 ____D C:\FRST 2020-04-12 14:31 - 2020-04-12 14:31 - 000000000 ____D C:\Users\KF\Downloads\FRST-OlderVersion 2020-04-12 14:30 - 2020-04-12 14:31 - 002281472 _____ (Farbar) C:\Users\KF\Downloads\FRST64.exe 2020-04-12 12:53 - 2020-04-12 12:53 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2020-04-12 12:53 - 2020-04-12 12:53 - 000214496 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2020-04-09 18:15 - 2020-04-09 18:15 - 000147081 _____ C:\Users\KF\Downloads\Rozporządzenie_Ministra_Edukacji_Narodowej_z_9_kwietnia_2020_r.pdf 2020-04-08 13:00 - 2020-04-08 13:01 - 000003556 _____ C:\Users\KF\Desktop\sim craft.txt 2020-04-08 12:59 - 2020-04-08 12:59 - 000000000 ____D C:\Users\KF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2020-04-07 14:55 - 2020-04-07 14:56 - 000027718 _____ C:\ZainstalowaneProgramy.txt 2020-04-06 10:16 - 2020-04-06 10:16 - 000632966 _____ C:\Users\KF\Downloads\Technika hiacynt (2).pdf 2020-04-06 10:15 - 2020-04-06 10:15 - 000632966 _____ C:\Users\KF\Downloads\Technika hiacynt (1).pdf 2020-04-06 09:32 - 2020-04-06 09:32 - 000413189 _____ C:\Users\KF\Downloads\scenariusz-lekcji-kanada-srodowisko-przyrodnicze-a-rozwoj-rolnictwa.pdf 2020-04-05 13:25 - 2020-04-05 13:25 - 000000000 ____D C:\Users\KF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2020-04-04 17:46 - 2020-04-04 17:46 - 000000000 ____D C:\WINDOWS\LastGood 2020-04-04 17:45 - 2020-03-18 11:39 - 000715680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\UcmCxUcsiNvppc.sys 2020-04-04 17:44 - 2020-03-19 01:26 - 000450464 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2020-04-04 17:44 - 2020-03-19 01:26 - 000348048 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2020-04-04 17:44 - 2020-03-19 01:25 - 011944864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2020-04-04 17:44 - 2020-03-19 01:25 - 010285472 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2020-04-04 17:44 - 2020-03-19 01:24 - 002073200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2020-04-04 17:44 - 2020-03-19 01:24 - 001565136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2020-04-04 17:44 - 2020-03-19 01:24 - 001481144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2020-04-04 17:44 - 2020-03-19 01:24 - 001351776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2020-04-04 17:44 - 2020-03-19 01:24 - 001142384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2020-04-04 17:44 - 2020-03-19 01:24 - 001022560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2020-04-04 17:44 - 2020-03-19 01:24 - 000817264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2020-04-04 17:44 - 2020-03-19 01:24 - 000680048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2020-04-04 17:44 - 2020-03-19 01:24 - 000676240 _____ C:\WINDOWS\system32\nvofapi64.dll 2020-04-04 17:44 - 2020-03-19 01:24 - 000573024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2020-04-04 17:44 - 2020-03-19 01:24 - 000546928 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2020-04-04 17:44 - 2020-03-19 01:24 - 000544144 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2020-04-04 17:44 - 2020-03-19 01:23 - 017601120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2020-04-04 17:44 - 2020-03-19 01:23 - 015157664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2020-04-04 17:44 - 2020-03-19 01:23 - 005856864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2020-04-04 17:44 - 2020-03-19 01:23 - 005589224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2020-04-04 17:44 - 2020-03-19 01:23 - 005158512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2020-04-04 17:44 - 2020-03-19 01:23 - 001049696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2020-04-04 17:44 - 2020-03-19 01:23 - 000849848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2020-04-04 17:44 - 2020-03-19 01:23 - 000811632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2020-04-04 17:44 - 2020-03-19 01:23 - 000655472 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2020-04-04 17:44 - 2020-03-19 01:23 - 000445024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2020-04-04 17:44 - 2020-03-18 11:39 - 000111058 _____ C:\WINDOWS\system32\nvidia-smi.1.pdf 2020-04-04 17:44 - 2020-03-18 11:39 - 000077314 _____ C:\WINDOWS\system32\nvinfo.pb 2020-04-04 16:43 - 2020-04-04 16:43 - 000000000 ____D C:\WINDOWS\LastGood.Tmp 2020-04-04 16:43 - 2020-03-19 04:22 - 004196160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2020-04-04 16:43 - 2019-10-04 16:12 - 040412552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2020-04-04 16:43 - 2019-10-04 16:12 - 035269840 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2020-04-04 16:42 - 2020-04-04 16:43 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation 2020-04-04 16:41 - 2020-04-02 17:15 - 001781584 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2020-04-04 16:41 - 2020-04-02 17:15 - 001781584 _____ C:\WINDOWS\system32\vulkaninfo.exe 2020-04-04 16:41 - 2020-04-02 17:15 - 001371976 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2020-04-04 16:41 - 2020-04-02 17:15 - 001371976 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2020-04-04 16:41 - 2020-04-02 17:15 - 001087304 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2020-04-04 16:41 - 2020-04-02 17:15 - 001087304 _____ C:\WINDOWS\system32\vulkan-1.dll 2020-04-04 16:41 - 2020-04-02 17:15 - 000947024 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2020-04-04 16:41 - 2020-04-02 17:15 - 000947024 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2020-04-04 16:41 - 2020-04-02 17:13 - 001720840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6444288.dll 2020-04-04 16:41 - 2020-04-02 17:13 - 001484808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6444288.dll 2020-04-04 16:41 - 2020-04-02 09:05 - 001691632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll 2020-04-04 16:41 - 2020-04-02 09:05 - 001468504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvppcgenco64_138831832.dll 2020-04-04 16:41 - 2020-04-02 09:05 - 000055872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2020-04-04 16:41 - 2020-03-19 04:22 - 004927048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2020-04-04 16:34 - 2020-04-04 16:35 - 596954152 _____ (NVIDIA Corporation) C:\Users\KF\Downloads\442.88_geforce_win10_64bit_international (1).exe 2020-04-04 15:36 - 2020-04-04 15:36 - 000108428 _____ C:\Users\KF\Downloads\2647_fileot.pdf 2020-04-03 12:35 - 2020-04-03 12:35 - 000632966 _____ C:\Users\KF\Downloads\Technika hiacynt.pdf 2020-04-01 14:47 - 2020-04-01 14:48 - 003972801 _____ C:\Users\KF\Downloads\Prus Boleslaw - Lalka 9789185805365.pdf 2020-04-01 14:46 - 2020-04-01 14:47 - 003097766 _____ C:\Users\KF\Downloads\lalka.pdf 2020-04-01 14:44 - 2020-04-01 14:45 - 003686830 _____ C:\Users\KF\Downloads\Władysław Stanisław Reymont- Chłopi.pdf 2020-04-01 14:42 - 2020-04-01 14:42 - 003328589 _____ C:\Users\KF\Downloads\Reymont Władysław - Chłopi pdf.pdf 2020-04-01 14:39 - 2020-04-01 14:39 - 003358295 _____ C:\Users\KF\Downloads\Krzyżacy-Henryk Sienkiewicz.pdf 2020-04-01 14:38 - 2020-04-01 14:38 - 002242953 _____ C:\Users\KF\Downloads\Krzyżacy I.pdf 2020-04-01 14:36 - 2020-04-01 14:36 - 002648698 _____ C:\Users\KF\Downloads\Bolesław Prus - Faraon.pdf 2020-04-01 14:35 - 2020-04-01 14:35 - 002155471 _____ C:\Users\KF\Downloads\Prus Bolesław - Faraon pdf (1).pdf 2020-04-01 14:32 - 2020-04-01 14:32 - 002155471 _____ C:\Users\KF\Downloads\Prus Bolesław - Faraon pdf.pdf 2020-04-01 14:03 - 2020-04-01 14:03 - 001024866 _____ C:\Users\KF\Downloads\Brzechwa Jan - 1.Akademia Pana Kleksa.pdf 2020-04-01 14:00 - 2020-04-01 14:00 - 001629141 _____ C:\Users\KF\Downloads\May Karol - Winnetou Tom 1 pdf.pdf 2020-04-01 13:55 - 2020-04-01 13:55 - 000000000 ____D C:\Users\KF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome 2020-04-01 10:15 - 2019-08-14 18:30 - 007976482 _____ C:\Users\KF\Downloads\eksport_dziennik_z_SKF_klasa_7c_SP51_szkola_6131_(2019-08-14).xml 2020-03-31 20:06 - 2020-04-02 08:09 - 000000000 ____D C:\Users\KF\Downloads\O2019 ProPlusPL 2020-03-31 16:24 - 2020-03-31 16:24 - 000614829 _____ C:\Users\KF\Downloads\scan0372.pdf 2020-03-31 12:58 - 2020-04-05 13:25 - 000000000 ____D C:\Users\KF\AppData\Roaming\Zoom 2020-03-30 19:44 - 2020-03-30 19:44 - 000115712 _____ C:\Users\KF\Downloads\garbage_codes_wiek_zmarlych_w_2017_r..xls 2020-03-27 14:09 - 2020-03-27 14:09 - 000163249 _____ C:\Users\KF\Downloads\URBANIZACJA_W_AMERYCE.pdf 2020-03-27 11:14 - 2020-03-27 11:14 - 000110742 _____ C:\Users\KF\Downloads\URBANIZACJA_W_AMERYCE.ppsx 2020-03-27 10:58 - 2020-03-27 10:58 - 000073148 _____ C:\Users\KF\Downloads\karta-pracy-wymiarowanie-rysunkow-technicznych.pdf 2020-03-25 21:36 - 2020-03-25 21:36 - 001034349 _____ C:\Users\KF\Downloads\Kształcenie_na_odległość_–_poradnik_dla_szkół.pdf 2020-03-25 11:20 - 2020-03-25 11:20 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2020-03-25 11:20 - 2020-03-25 11:20 - 009930552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2020-03-25 11:20 - 2020-03-25 11:20 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2020-03-25 11:20 - 2020-03-25 11:20 - 006520776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2020-03-25 11:20 - 2020-03-25 11:20 - 004563416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2020-03-25 11:20 - 2020-03-25 11:20 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2020-03-25 11:20 - 2020-03-25 11:20 - 001398584 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2020-03-25 11:20 - 2020-03-25 11:20 - 001077048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2020-03-25 11:20 - 2020-03-25 11:20 - 000772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2020-03-25 11:20 - 2020-03-25 11:20 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2020-03-25 11:20 - 2020-03-25 11:20 - 000561464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2020-03-24 10:30 - 2020-04-08 12:25 - 000000000 ____D C:\Users\KF\Desktop\KORONA 2020-03-23 19:23 - 2020-03-31 16:28 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner 2020-03-23 19:23 - 2020-03-23 19:23 - 000001158 _____ C:\Users\KF\Desktop\MSI Afterburner.lnk 2020-03-23 19:23 - 2020-03-23 19:23 - 000000000 ____D C:\Users\KF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner 2020-03-23 15:11 - 2020-03-18 11:39 - 000039824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll 2020-03-23 15:06 - 2020-04-04 22:20 - 000000000 ____D C:\Users\KF\AppData\Local\NVIDIA 2020-03-23 15:06 - 2020-03-27 22:29 - 000000000 ____D C:\Users\KF\AppData\Local\NVIDIA Corporation 2020-03-23 15:03 - 2020-04-12 12:56 - 000000000 ____D C:\ProgramData\NVIDIA 2020-03-23 15:03 - 2020-04-04 16:43 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2020-03-23 15:03 - 2020-04-02 09:05 - 002859872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2020-03-23 15:03 - 2020-04-02 09:05 - 002221064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2020-03-23 15:03 - 2020-04-02 09:05 - 001321496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll 2020-03-23 15:03 - 2020-04-02 09:05 - 000174560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2020-03-23 15:03 - 2020-04-02 09:05 - 000149472 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2020-03-23 15:03 - 2020-03-23 15:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2020-03-23 15:02 - 2020-03-14 02:47 - 000075600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys 2020-03-23 15:02 - 2020-03-14 02:47 - 000069840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2020-03-23 14:58 - 2020-04-04 17:45 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2020-03-23 14:58 - 2020-04-04 16:43 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2020-03-23 14:57 - 2020-03-18 11:39 - 000222112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2020-03-23 14:54 - 2020-03-23 14:56 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2020-03-23 14:38 - 2020-03-23 14:38 - 000000000 ____D C:\WINDOWS\pss 2020-03-23 14:36 - 2020-03-23 14:36 - 001333200 _____ (Igor Pavlov) C:\Users\KF\Downloads\DDUv18.0.2.2.exe 2020-03-23 14:36 - 2020-03-23 14:36 - 000000000 ____D C:\sterowniki 2020-03-23 09:56 - 2020-03-23 09:56 - 002804630 _____ C:\Users\KF\Downloads\E7978v2.1.zip 2020-03-23 09:55 - 2020-03-23 09:55 - 002483568 _____ C:\Users\KF\Downloads\M7978v2.1_EURO.zip 2020-03-23 09:54 - 2020-03-23 09:54 - 001288408 _____ (Google LLC) C:\Users\KF\Downloads\installbackupandsync.exe 2020-03-22 20:10 - 2020-03-22 20:10 - 000000000 ___HD C:\$SysReset 2020-03-21 17:05 - 2020-04-11 18:34 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-03-21 17:05 - 2020-04-11 18:34 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-03-21 17:05 - 2020-04-11 18:34 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-03-21 17:05 - 2020-04-11 18:34 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-03-21 17:04 - 2020-04-12 11:27 - 000018682 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1 2020-03-21 17:04 - 2020-04-12 11:27 - 000017940 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1 2020-03-21 17:04 - 2020-04-12 11:27 - 000012587 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1 2020-03-21 17:04 - 2020-04-12 10:11 - 000001209 _____ C:\ProgramData\NvcDispCorePlugin.log_backup1 2020-03-21 16:32 - 2020-03-21 16:32 - 000000959 _____ C:\Users\KF\AppData\Roaming\Microsoft\Windows\Start Menu\DOOMEternal.lnk 2020-03-21 16:32 - 2020-03-21 16:32 - 000000935 _____ C:\Users\Public\Desktop\DOOMEternal.lnk 2020-03-21 15:59 - 2020-03-21 16:32 - 000000000 ____D C:\Program Files (x86)\DOOMEternal 2020-03-20 23:55 - 2020-03-20 23:55 - 000348419 _____ C:\Users\KF\Downloads\Rozporządzenie__MEN_COViD-19_art_30c.pdf 2020-03-20 23:55 - 2020-03-20 23:55 - 000149653 _____ C:\Users\KF\Downloads\rozporządzenie_MEN_nowelizacja_–_COViD-19_(art_30b).pdf 2020-03-17 21:21 - 2020-03-17 21:21 - 000479148 _____ C:\Users\KF\Downloads\geocache_logbook (1).pdf 2020-03-17 21:20 - 2020-03-17 21:20 - 000485194 _____ C:\Users\KF\Downloads\geocache_logbook.pdf 2020-03-16 22:36 - 2020-03-16 22:36 - 000178379 _____ C:\Users\KF\Downloads\2020_03_13_Nauka_zdalna_w_czasie_zawieszenia_zajec_komunikat_MEN.pdf 2020-03-16 14:00 - 2020-03-16 14:00 - 000002745 _____ C:\Users\KF\AppData\Local\recently-used.xbel 2020-03-16 13:44 - 2020-03-16 13:44 - 000022832 _____ C:\Users\KF\Downloads\pwg_wzor (2).zip 2020-03-16 13:40 - 2020-03-16 13:40 - 000327100 _____ C:\Users\KF\Desktop\projekt1_pigeox69.svg 2020-03-16 11:18 - 2020-03-16 11:18 - 000032598 _____ C:\Users\KF\Downloads\globe-vector-37.svg 2020-03-16 11:06 - 2020-03-16 11:06 - 000006520 _____ C:\Users\KF\Downloads\globe.svg 2020-03-16 11:00 - 2020-03-16 11:00 - 001599996 _____ C:\Users\KF\Downloads\illust57_5742.zip 2020-03-13 18:19 - 2020-03-13 18:19 - 000576588 _____ C:\Users\KF\Downloads\Brodny.pdf ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-04-12 14:45 - 2016-07-29 15:52 - 000000000 ____D C:\Users\KF\AppData\Local\Battle.net 2020-04-12 14:30 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-04-12 13:46 - 2019-12-07 13:54 - 000000000 ____D C:\Users\KF\AppData\Local\JDownloader 2.0 2020-04-12 12:59 - 2020-01-04 21:01 - 000848938 _____ C:\WINDOWS\system32\perfh00C.dat 2020-04-12 12:59 - 2020-01-04 21:01 - 000175118 _____ C:\WINDOWS\system32\perfc00C.dat 2020-04-12 12:59 - 2019-06-30 21:14 - 003028220 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-04-12 12:59 - 2019-03-19 14:23 - 000856142 _____ C:\WINDOWS\system32\perfh015.dat 2020-04-12 12:59 - 2019-03-19 14:23 - 000182054 _____ C:\WINDOWS\system32\perfc015.dat 2020-04-12 12:59 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF 2020-04-12 12:56 - 2019-06-30 21:12 - 000003222 _____ C:\WINDOWS\system32\Tasks\NahimicMSIUILauncherRun 2020-04-12 12:56 - 2019-06-30 21:12 - 000003210 _____ C:\WINDOWS\system32\Tasks\NahimicMSIsvc64Run 2020-04-12 12:56 - 2019-06-30 21:12 - 000003202 _____ C:\WINDOWS\system32\Tasks\NahimicMSIsvc32Run 2020-04-12 12:55 - 2017-05-10 18:03 - 000000000 ____D C:\Users\KF\AppData\Roaming\Twitch 2020-04-12 12:53 - 2019-06-30 21:12 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-04-12 11:27 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2020-04-12 11:15 - 2019-06-30 21:02 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-04-12 10:17 - 2019-10-04 07:17 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2020-04-12 10:12 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps 2020-04-12 10:12 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-04-11 23:33 - 2019-07-15 15:38 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2020-04-11 18:34 - 2020-02-04 09:52 - 000003194 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2020-04-11 18:34 - 2020-02-04 09:52 - 000002236 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2020-04-11 18:34 - 2019-10-04 07:17 - 000002608 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0 2020-04-11 18:34 - 2019-06-30 21:12 - 000003862 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player PPAPI Notifier 2020-04-11 18:34 - 2019-06-30 21:12 - 000003546 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater 2020-04-11 18:34 - 2019-06-30 21:12 - 000003498 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2020-04-11 18:34 - 2019-06-30 21:12 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2020-04-11 18:34 - 2019-06-30 21:12 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-04-11 18:34 - 2019-06-30 21:12 - 000003274 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2020-04-11 18:34 - 2019-06-30 21:12 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-04-11 18:34 - 2019-06-30 21:12 - 000003180 _____ C:\WINDOWS\system32\Tasks\klcp_update 2020-04-11 18:34 - 2019-06-30 21:12 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-04-11 18:34 - 2019-06-30 21:12 - 000003118 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification 2020-04-11 18:34 - 2019-06-30 21:12 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-04-11 18:34 - 2019-06-30 21:12 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-04-11 18:34 - 2019-06-30 21:12 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2017892951-354561005-2720775881-1000 2020-04-11 18:34 - 2019-06-30 21:12 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2020-04-11 18:34 - 2019-06-30 21:12 - 000002596 _____ C:\WINDOWS\system32\Tasks\CrystalDiskInfo 2020-04-11 18:34 - 2019-06-30 21:12 - 000002596 _____ C:\WINDOWS\system32\Tasks\CorelUpdateHelperTaskCore 2020-04-11 18:34 - 2019-06-30 21:12 - 000002250 _____ C:\WINDOWS\system32\Tasks\{5820AFCB-E525-4B9F-AB73-3C03B0BB0F22} 2020-04-11 18:34 - 2019-06-30 21:12 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software 2020-04-11 17:36 - 2016-11-02 18:51 - 000000000 ____D C:\Users\KF\AppData\Roaming\Mumble 2020-04-11 08:55 - 2017-12-29 15:23 - 000000000 ____D C:\ProgramData\Logishrd 2020-04-10 20:54 - 2016-08-21 12:30 - 000000000 ____D C:\Users\KF\AppData\Local\CrashDumps 2020-04-10 15:33 - 2018-02-01 16:49 - 000040568 _____ C:\Users\KF\Desktop\Nowy Arkusz programu Microsoft Office Excel.xlsx 2020-04-08 23:45 - 2016-09-22 17:00 - 000000000 ____D C:\Users\KF\AppData\Roaming\discord 2020-04-08 13:02 - 2016-09-08 12:16 - 000000000 ____D C:\Users\KF\AppData\Local\ElevatedDiagnostics 2020-04-08 13:00 - 2018-06-01 18:22 - 000000000 ____D C:\Users\KF\AppData\Local\D3DSCache 2020-04-08 12:59 - 2016-09-22 17:00 - 000000000 ____D C:\Users\KF\AppData\Local\Discord 2020-04-05 13:35 - 2016-09-21 19:33 - 000000000 ____D C:\Users\KF\AppData\Roaming\TS3Client 2020-04-04 17:45 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Help 2020-04-04 16:44 - 2017-12-09 16:20 - 000000000 ____D C:\Users\KF\AppData\Local\Packages 2020-04-04 16:43 - 2016-07-29 11:03 - 000000000 ____D C:\Temp 2020-04-03 10:29 - 2016-07-28 21:27 - 000002310 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-04-01 11:38 - 2016-07-29 15:51 - 000000000 ____D C:\Program Files (x86)\Battle.net 2020-03-27 22:55 - 2019-07-10 22:37 - 000000000 ____D C:\adb 2020-03-27 22:07 - 2016-07-28 20:51 - 000000000 ____D C:\ProgramData\Package Cache 2020-03-26 01:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2020-03-26 01:18 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr 2020-03-25 11:21 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-03-22 20:05 - 2019-06-30 21:08 - 000000000 ____D C:\Users\KF 2020-03-22 20:04 - 2019-06-30 21:08 - 000000000 ____D C:\Users\DefaultAppPool 2020-03-22 20:04 - 2016-07-29 15:51 - 000000000 ____D C:\Users\KF\AppData\Roaming\Battle.net 2020-03-22 20:04 - 2016-07-29 09:57 - 000000000 ____D C:\Users\KF\AppData\Roaming\GHISLER 2020-03-22 20:02 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\registration 2020-03-21 22:55 - 2016-08-14 18:40 - 000000000 ____D C:\Users\KF\AppData\Roaming\Azureus 2020-03-21 17:05 - 2018-06-28 08:05 - 000000000 ____D C:\ProgramData\Packages 2020-03-20 18:01 - 2017-10-19 19:58 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2020-03-19 10:58 - 2020-02-18 00:30 - 000007887 _____ C:\WINDOWS\BRRBCOM.INI 2020-03-17 20:38 - 2019-06-30 21:08 - 000002401 _____ C:\Users\KF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-03-17 20:38 - 2016-07-29 09:50 - 000000000 ___RD C:\Users\KF\OneDrive 2020-03-15 20:19 - 2019-08-13 16:20 - 000000000 ____D C:\Users\KF\AppData\Roaming\inkscape 2020-03-13 15:32 - 2018-11-26 17:15 - 000000000 ____D C:\Users\KF\.android ==================== Pliki w katalogu głównym wybranych folderów ======== 2017-10-05 16:21 - 2017-10-05 16:21 - 000000000 _____ () C:\Users\KF\AppData\Local\Driver_LOM_8171Present.flag 2018-09-28 16:45 - 2018-09-28 16:45 - 000000000 _____ () C:\Users\KF\AppData\Local\oobelibMkey.log 2020-03-16 14:00 - 2020-03-16 14:00 - 000002745 _____ () C:\Users\KF\AppData\Local\recently-used.xbel 2016-07-29 22:59 - 2017-08-07 12:37 - 000007602 _____ () C:\Users\KF\AppData\Local\resmon.resmoncfg ==================== SigCheckExt ========================= 2016-07-16 13:42 - 2016-07-16 13:42 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AllJoynDiscoveryPlugin.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-version-l1-1-0.dll 2019-12-10 21:30 - 2018-12-20 14:55 - 002831360 _____ (The Public) C:\WINDOWS\system32\AviSynth.dll 2016-07-29 09:59 - 2016-07-01 05:57 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpreference.exe 2015-10-30 09:19 - 2015-10-30 09:19 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafCdp.dll 2017-09-29 15:42 - 2017-09-29 15:42 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\DdcComImplementations.dll 2017-04-12 08:18 - 2017-03-28 07:37 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DdcWnsListener.dll 2019-12-10 21:30 - 2018-12-18 18:51 - 002300928 _____ (Abysmal Software) C:\WINDOWS\system32\DevIL.dll 2010-07-23 09:55 - 2010-07-23 09:55 - 000032768 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpbmiapi.dll 2010-07-23 09:55 - 2010-07-23 09:55 - 000033280 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpboid.dll 2010-07-23 09:55 - 2010-07-23 09:55 - 000009216 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpboidps.dll 2010-07-23 09:55 - 2010-07-23 09:55 - 000057344 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpbpro.dll 2010-07-23 09:55 - 2010-07-23 09:55 - 000009728 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpbprops.dll 2010-01-19 15:12 - 2010-01-19 15:12 - 000070144 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPBWSDR.DLL 2009-11-27 12:15 - 2009-11-27 12:15 - 000228864 _____ (hp) C:\WINDOWS\system32\hplbddrv.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000079872 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPZidr12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000071680 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPZinw12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000089600 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPZipm12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000054784 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPZipr12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000045056 _____ (Hewlett-Packard) C:\WINDOWS\system32\hpzipt12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000030208 _____ (Hewlett-Packard) C:\WINDOWS\system32\hpzisn12.dll 2017-05-10 08:21 - 2017-03-04 08:26 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2016-07-16 13:43 - 2016-07-17 00:08 - 003584000 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkAnalysisLegacyCom.dll 2015-07-23 16:03 - 2015-07-23 16:03 - 000094720 _____ (Qualcomm Atheros, Inc.) C:\WINDOWS\system32\kstat.exe 2019-12-27 01:13 - 2011-12-07 20:37 - 000148992 _____ ( ) C:\WINDOWS\system32\lagarith.dll 2017-09-29 15:41 - 2017-09-29 15:41 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Core.dll 2018-04-29 19:06 - 2018-03-30 05:28 - 003121664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll 2016-07-29 04:05 - 2016-07-29 04:05 - 001359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll 2016-07-29 02:20 - 2012-08-21 23:01 - 000245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\OxpsConverter.exe 2016-07-29 02:30 - 2015-01-09 05:14 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\powertracker.dll 2017-08-20 21:43 - 2017-03-23 09:04 - 003547136 _____ C:\WINDOWS\system32\pwNative.exe 2016-07-29 02:20 - 2012-04-26 07:34 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdrmemptylst.exe 2017-09-29 15:41 - 2017-09-29 15:41 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ServiceWorkerHost.exe 2015-10-30 09:18 - 2015-10-30 09:18 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flashlight.dll 2017-09-29 15:41 - 2017-09-29 15:41 - 000173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe 2016-07-29 02:20 - 2015-07-22 18:48 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2017-09-29 15:41 - 2017-09-29 15:41 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\VrdUmed.dll 2017-09-29 15:41 - 2017-09-29 15:41 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedic.exe 2016-07-28 21:00 - 2012-07-26 04:36 - 000009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wdfres.dll 2016-07-16 13:42 - 2016-07-16 13:42 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDiscoveryPlugin.dll 2016-07-16 13:42 - 2016-07-16 13:42 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiOnboardingPlugin.dll 2017-09-29 15:41 - 2017-09-29 15:41 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Sets.dll 2016-07-29 02:21 - 2016-02-12 20:18 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2019-12-27 01:13 - 2017-07-30 13:50 - 003799552 _____ (x264vfw project) C:\WINDOWS\system32\x264vfw64.dll 2019-12-27 01:13 - 2019-12-28 12:00 - 000784384 _____ C:\WINDOWS\system32\xvidcore.dll 2019-12-27 01:13 - 2019-12-28 12:00 - 000310784 _____ C:\WINDOWS\system32\xvidvfw.dll 2008-12-02 05:48 - 2008-01-21 04:24 - 000078336 _____ C:\WINDOWS\bcdedit.exe 2017-06-29 14:07 - 2017-06-29 14:07 - 000000126 _____ C:\WINDOWS\perfc.dll 2017-01-23 21:17 - 2017-01-23 21:22 - 000139264 _____ (Blizzard Entertainment) C:\WINDOWS\War3Unin.exe 2016-07-29 04:01 - 2016-07-29 04:01 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2016-07-29 04:01 - 2016-07-29 04:01 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2015-03-17 01:34 - 2015-03-17 01:34 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atl71.dll 2019-12-10 21:30 - 2018-12-20 15:06 - 002354688 _____ (The Public) C:\WINDOWS\SysWOW64\AviSynth.dll 2016-07-16 13:43 - 2016-07-16 13:43 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\configmanager2.dll 2016-07-16 13:43 - 2016-07-16 13:43 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coredpus.dll 2017-09-29 15:42 - 2017-09-29 15:42 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreShellExtFramework.dll 2015-10-30 09:19 - 2015-10-30 09:19 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafCdp.dll 2019-12-10 21:30 - 2018-12-20 15:01 - 000764416 _____ (Abysmal Software) C:\WINDOWS\SysWOW64\DevIL.dll 2019-12-27 01:13 - 2015-10-24 19:00 - 000112128 _____ C:\WINDOWS\SysWOW64\ff_vfw.dll 2010-08-06 11:13 - 2010-08-06 11:13 - 000050688 _____ (Hewlett-Packard) C:\WINDOWS\SysWOW64\HPZidr12.dll 2010-08-06 11:13 - 2010-08-06 11:13 - 000034816 _____ (Hewlett-Packard) C:\WINDOWS\SysWOW64\HPZipr12.dll 2017-03-14 19:56 - 2017-03-04 08:18 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll 2016-07-16 13:44 - 2016-07-17 00:09 - 002549760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkAnalysisLegacyCom.dll 2015-05-22 01:00 - 2015-05-22 01:00 - 000002560 _____ (Intel(R) Corporation) C:\WINDOWS\SysWOW64\IusEventLog.dll 2016-07-29 04:05 - 2016-07-29 04:05 - 000645120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsIntl.dll 2019-12-27 01:13 - 2011-12-07 20:32 - 000216064 _____ ( ) C:\WINDOWS\SysWOW64\lagarith.dll 2015-03-17 01:34 - 2015-03-17 01:34 - 001060864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc71.dll 2015-03-17 01:34 - 2015-03-17 01:34 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71CHS.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71CHT.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71DEU.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ENU.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ESP.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71FRA.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ITA.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71JPN.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71KOR.DLL 2015-03-17 01:34 - 2015-03-17 01:34 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc71u.dll 2016-07-29 04:05 - 2016-07-29 04:05 - 001155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmlmedia.dll 2011-04-29 12:27 - 2011-04-29 12:27 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll 2011-04-29 17:01 - 2011-04-29 17:01 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll 2011-04-29 15:41 - 2011-04-29 15:41 - 001230336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml4.dll 2011-04-29 15:41 - 2011-04-29 15:41 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml4r.dll 2017-09-29 15:42 - 2017-09-29 15:42 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdlrecover.exe 2017-09-29 15:42 - 2017-09-29 15:42 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tier2punctuations.dll 2006-10-26 13:45 - 2006-10-26 13:45 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WISPTIS.EXE 2019-12-27 01:13 - 2017-07-30 13:50 - 003850240 _____ (x264vfw project) C:\WINDOWS\SysWOW64\x264vfw.dll 2019-12-27 01:13 - 2019-12-28 12:00 - 000681984 _____ C:\WINDOWS\SysWOW64\xvidcore.dll 2019-12-27 01:13 - 2019-12-28 12:00 - 000284160 _____ C:\WINDOWS\SysWOW64\xvidvfw.dll 2015-06-15 10:00 - 2015-06-15 10:00 - 000041984 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\USB3Ver.dll 2019-07-10 22:36 - 2019-07-10 22:36 - 009614711 _____ (Snoop05) C:\Users\KF\Downloads\adb-setup-1.4.3.exe 2020-04-12 14:30 - 2020-04-12 14:31 - 002281472 _____ (Farbar) C:\Users\KF\Downloads\FRST64.exe 2018-07-30 19:48 - 2018-07-30 19:48 - 002246436 _____ (EFD Software ) C:\Users\KF\Downloads\hdtunepro_570_trial.exe 2019-05-17 22:01 - 2019-05-17 22:01 - 013245040 _____ ( ) C:\Users\KF\Downloads\HoMM3_HD_Latest_setup.exe 2019-05-17 22:10 - 2019-05-17 22:10 - 229493838 _____ (HotA Crew ) C:\Users\KF\Downloads\HotA_1.5.4_setup.exe 2018-07-30 10:42 - 2018-07-30 10:42 - 000768776 _____ (e-Presencia) C:\Users\KF\Downloads\posteriza_install.exe ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== BCD ================================ Firmware Boot Manager --------------------- identifier {fwbootmgr} displayorder {bootmgr} {e94b926e-54fa-11e6-992d-814a510a849a} timeout 1 Windows Boot Manager -------------------- identifier {bootmgr} device partition=\Device\HarddiskVolume5 path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI description Windows Boot Manager locale pl-PL inherit {globalsettings} default {current} resumeobject {eaa610f8-9b71-11e9-9294-956298c5ad78} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Firmware Application (101fffff) ------------------------------- identifier {e94b926e-54fa-11e6-992d-814a510a849a} description Hard Drive Windows Boot Loader ------------------- identifier {e94b9273-54fa-11e6-992d-814a510a849a} device ramdisk=[C:]\Recovery\e94b9273-54fa-11e6-992d-814a510a849a\Winre.wim,{e94b9274-54fa-11e6-992d-814a510a849a} path \windows\system32\winload.efi description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\e94b9273-54fa-11e6-992d-814a510a849a\Winre.wim,{e94b9274-54fa-11e6-992d-814a510a849a} systemroot \windows nx OptIn winpe Yes Windows Boot Loader ------------------- identifier {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale pl-PL inherit {bootloadersettings} recoverysequence {eaa610fa-9b71-11e9-9294-956298c5ad78} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {eaa610f8-9b71-11e9-9294-956298c5ad78} nx OptIn bootmenupolicy Standard Windows Boot Loader ------------------- identifier {eaa610fa-9b71-11e9-9294-956298c5ad78} device ramdisk=[\Device\HarddiskVolume8]\Recovery\WindowsRE\Winre.wim,{eaa610fb-9b71-11e9-9294-956298c5ad78} path \windows\system32\winload.efi description Windows Recovery Environment locale pl-PL inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume8]\Recovery\WindowsRE\Winre.wim,{eaa610fb-9b71-11e9-9294-956298c5ad78} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Windows Boot Loader ------------------- identifier {ec4a1b0e-5ad8-11e8-a414-9a092fd35f34} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{ec4a1b0f-5ad8-11e8-a414-9a092fd35f34} path \windows\system32\winload.efi description Windows Recovery Environment locale pl-PL inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{ec4a1b0f-5ad8-11e8-a414-9a092fd35f34} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Resume from Hibernate --------------------- identifier {eaa610f8-9b71-11e9-9294-956298c5ad78} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale pl-PL inherit {resumeloadersettings} recoverysequence {eaa610fa-9b71-11e9-9294-956298c5ad78} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Windows Memory Tester --------------------- identifier {memdiag} device partition=\Device\HarddiskVolume5 path \EFI\Microsoft\Boot\memtest.efi description Diagnostyka pami�ci systemu Windows locale pl-PL inherit {globalsettings} badmemoryaccess Yes EMS Settings ------------ identifier {emssettings} bootems No Debugger Settings ----------------- identifier {dbgsettings} debugtype Serial debugport 1 baudrate 115200 RAM Defects ----------- identifier {badmemory} Global Settings --------------- identifier {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Boot Loader Settings -------------------- identifier {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Hypervisor Settings ------------------- identifier {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Resume Loader Settings ---------------------- identifier {resumeloadersettings} inherit {globalsettings} Device options -------------- identifier {e94b9274-54fa-11e6-992d-814a510a849a} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\e94b9273-54fa-11e6-992d-814a510a849a\boot.sdi Device options -------------- identifier {eaa610fb-9b71-11e9-9294-956298c5ad78} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume8 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Koniec FRST.txt ========================